Campus ID News
Card, mobile credential, payment and security
FEATURED
PARTNERS
ransomware image

Student ID data compromised in Colorado ransomware attack

Breach may have exposed ten years of SSNs, student ID numbers of college and high school students

Chris Corum   ||   Aug 10, 2023  ||   

Days ago, the Colorado Department of Higher Education (CDHE) reported that a cyber breach may have compromised personal information for teachers, high school students and college students in the state from 2010 to 2020.

As reported in the department’s statement, they became aware of the ransomware attack on June 19, 2023. They took steps to secure the network and worked with third-party specialists to conduct a thorough investigation, restore systems and return to normal operations.

“An unauthorized actor(s) accessed CDHE systems between June 11 and June 19, 2023, and certain data was copied from (our) systems during this time,” says the Colorado Department of Education. “Our investigation has revealed that some of the impacted records include names and social security numbers or student identification numbers, as well as other education records.”

In 2022, 44 colleges and universities and an equal number of school districts were impacted by ransomware.

According to CBSNews.com, a CDHE spokesperson says the agency knows the source of the ransomware and confirms that it was not paid. The amount asked for was not disclosed.

Ransomware attacks in higher education are not uncommon. A study from malware research firm, Emisoft, reports that 44 colleges and universities were impacted in 2022. An equal number of school districts fell victim. In 65% of the cases, data was taken. The true numbers are likely to be higher as cyber attacks often go unreported.

Those that may have been impacted by in the Colorado breach include individuals who:

  • attended a public institution of higher education in Colorado between 2007-2020
  • attended a Colorado public high school between 2004-2020
  • held a Colorado K-12 public school educator license between 2010-2014
  • participated in the Dependent Tuition Assistance Program from 2009-2013
  • participated in Colorado Department of Education’s Adult Education Initiatives programs between 2013-2017
  • obtained a GED between 2007-2011 may be impacted by this incident.

CDHE says it “is providing impacted individuals with complimentary access to credit monitoring and identity theft protection services through Experian for two years.”

Subscribe to our weekly newsletter

RECENT ARTICLES

Information governance for campus card programs
Mar 20, 26 / ,

How campus card programs can strengthen data protection through information governance

We all know campus card programs generate a constant stream of data, and each interaction creates a digital record. Protecting this data and the individuals involved –our students, faculty, and staff – is a crucial responsibility. How institutions can best respond to this challenge was the focus of a recent NACCU webinar and article  featuring […]
Identity-first infrastructure woman on phone

Is identity-first infrastructure evolving the campus card model?

For years, campus technology leaders have discussed the coming shift to cloud-based systems, flexible credential options, and non-proprietary hardware and solutions. According to Danny Smith, owner of ColorID, that transformation is no longer theoretical – it’s happening now, and it is fundamentally changing how universities think about identity infrastructure. “Even before the pandemic, when we […]
Covington KY skyline
Mar 17, 26 / ,

NACCU hotel reservation deadline just days away

The NACCU Annual Conference is fast approaching and the deadline to book your hotel rooms is March 25 at 11:00pm CST. NACCU has secured special conference rates at two hotels – the Cincinnati Marriott at RiverCenter and the Hotel Covington. According to the association, however, the Marriott has limited remaining availability. All the more reason […]
CIDN logo reversed
The only publication dedicated to the use of campus cards, mobile credentials, identity and security technology in the education market. CampusIDNews – formerly CR80News – has served more than 6,500 subscribers for more than two decades.
Twitter

Great inverview on the Public Key Open Credential (PKOC) standard with ELATEC's Jason Ouellette, Chairman of the Board for the @PSIAlliance.

Attn: friends in the biometrics space. Nominations close Friday for the annual Women in Biometrics Awards. Take five minutes to recognize a colleague or even yourself. http://WomenInBiometrics.com

Load More...
Contact
CampusIDNews is published by AVISIAN Publishing
315 E. Georgia St.
Tallahassee, FL 32301
www.AVISIAN.com[email protected]
Use our contact form to submit tips, corrections, or questions to our team.
©2026 CampusIDNews. All rights reserved.